Metrics
Affected Vendors & Products
Wed, 29 Apr 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sourcecodester
Sourcecodester pizzafy Ecommerce System |
|
| Vendors & Products |
Sourcecodester
Sourcecodester pizzafy Ecommerce System |
Wed, 29 Apr 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A security vulnerability has been detected in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this vulnerability is the function save_settings of the file /pizzafy/admin/ajax.php?action=save_settings of the component Setting Handler. Such manipulation leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may be used. | |
| Title | SourceCodester Pizzafy Ecommerce System Setting ajax.php save_settings sql injection | |
| Weaknesses | CWE-74 CWE-89 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-29T20:30:15.154Z
Reserved: 2026-04-29T13:17:21.906Z
Link: CVE-2026-7407
No data.
Status : Deferred
Published: 2026-04-29T21:16:22.483
Modified: 2026-04-29T21:16:40.893
Link: CVE-2026-7407
No data.
OpenCVE Enrichment
Updated: 2026-04-29T22:30:21Z